CVSS v3
7.8
HIGH
EPSS Score
28.4%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
A stack-based buffer overflow in the processPrivilage() function in IOS/process-general.c in nipper-ng 0.11.10 allows remote attackers (serving firewall configuration files) to achieve Remote Code Execution or Denial Of Service via a crafted file.
A stack-based buffer overflow in the processPrivilage() function in IOS/process-general.c in nipper-ng 0.11.10 allows remote attackers (serving firewall configuration files) to achieve Remote Code Execution or Denial Of Service via a crafted file.
Active exploitation of CVE-2019-17424 has not been confirmed. The EPSS score is 28.4%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2019-17424 has a CVSS v3 base score of 7.8 (HIGH severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).